Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security » Acer puts Active X hole on laptops
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
Credit Card Company's Help German Police. »
« D'Oh! Encrypted files, transfered, then reformated.  
AuthorAll Replies


Name Game
Premium
join:2002-07-07
North Myrtle Beach, SC

reply to vircotto
Re: Acer puts Active X hole on laptops

said by vircotto See Profile :

NG,

Okay, you've confused me. (Really, not that hard to do!)

I'm pretty sure that LunchAPP.APlunch is the ActiveX control in question. I've found a site where on 11/19/06 Tan Chew Keong presented information:
»vuln.sg/acerlunchapp-en.html

He only tested on two Acer notebooks as that was all he had access to. He does provide some test code that launches calc.exe.

Also, I found this:
»nvd.nist.gov/nvd.cfm?cvename=CVE-2006-6121
Yup and I see all of the links out there about a lunchapp thingie all points to his info..or others who just linked to or copied his warning...BUT since I myself do not have one of those laptops..and since [LaunchApp] Alaunch is surely part of Acer stuff..I am trying to figure out myself if he just has a 'typo' in his write up..and he really mean Launch...or he did find a lunch and it is not even part of Acer stuff and might be a bad boy..so hope that someone who has an Acer laptop can really confirm it is lunch for the activeX..since to me that would be very strange.
--
Gladiator Security Forum »www.gladiator-antivirus.com/ Missing Kids »www.missingkids.com/


vircotto

join:2002-06-04
Illinois

reply to vircotto
NG,

Okay, you've confused me. (Really, not that hard to do!)

I'm pretty sure that LunchAPP.APlunch is the ActiveX control in question. I've found a site where on 11/19/06 Tan Chew Keong presented information:
»vuln.sg/acerlunchapp-en.html

He only tested on two Acer notebooks as that was all he had access to. He does provide some test code that launches calc.exe.

Also, I found this:
»nvd.nist.gov/nvd.cfm?cvename=CVE-2006-6121
Forums » Up and Running » Security » SecurityCredit Card Company's Help German Police. »
« D'Oh! Encrypted files, transfered, then reformated.  


Saturday, 28-Nov 14:41:24 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [122] Time Warner Cable Fires Broadside At Broadcasters
· [112] New AT&T Ad Campaign Hits Back At Verizon
· [96] Apple Joins AT&T Verizon Snark Fest
· [87] New Bill Takes Aim At Higher Verizon ETFs
· [75] TiVo Sees Record Customer Losses
· [70] Verizon CEO: Hulu Will Be Dead Soon
· [69] In-Flight Internet Headed For Bumpy Landing?
· [62] Thanksgiving Open Thread
· [61] Weekend Open Thread
· [40] EFF Wages War On Fine Print
Most people now reading
· Why would I want an e reader? [General Questions]
· 3.x Feral Druid - Bear Tanking Guide [World of Warcraft]
· Using DIR-615 C1/3.01 with Trendnet TEW-652BRP in N Mode [D-Link]
· Windows 7 boot manager editing questions [Microsoft Help]
· [Vista] Why is HD So Full? [Microsoft Help]
· Back to Comcast - Life Sucks Again - Montgomery County, MD [Comcast Cable TV]
· TPIA review by Electronic Box [Canadian Broadband]
· 5 hour energy for diabetic [General Questions]
· [Newsgroups] Newzleech down? [Filesharing Software]
· Using AirMax to provide triple play services? [Wireless Service Providers]